ImHex - A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM
https://ift.tt/fTGgNSZ
Submitted July 29, 2022 at 11:50PM by CyberMasterV
via reddit https://ift.tt/MCBkJED
https://ift.tt/fTGgNSZ
Submitted July 29, 2022 at 11:50PM by CyberMasterV
via reddit https://ift.tt/MCBkJED
GitHub
GitHub - WerWolv/ImHex: 🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3…
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM. - GitHub - WerWolv/ImHex: 🔍 A Hex Editor for Reverse Engineers, Programmers and people who...
Manipulating Windows Tokens with Go
https://ift.tt/kOoLaxN
Submitted July 29, 2022 at 10:57PM by sciencestudent99
via reddit https://ift.tt/7StkhYO
https://ift.tt/kOoLaxN
Submitted July 29, 2022 at 10:57PM by sciencestudent99
via reddit https://ift.tt/7StkhYO
FourCore
Manipulating Windows Tokens with Go - FourCore
Windows Tokens are used for authentication and assigning privileges to windows programs. Understanding token manipulation is essential to detect malicious behaviours. Security professionals can use the wintoken library for token manipulation.
Critical Vulnerability Affecting Arris / Arris-variant DSL/Fiber Routers
https://ift.tt/bvcsMTS
Submitted July 30, 2022 at 01:10AM by sanitybit
via reddit https://ift.tt/A2WXHQ1
https://ift.tt/bvcsMTS
Submitted July 30, 2022 at 01:10AM by sanitybit
via reddit https://ift.tt/A2WXHQ1
I'm Building a Self-Destructing USB Drive.
https://ift.tt/suvod62
Submitted July 30, 2022 at 02:41AM by Machinehum
via reddit https://ift.tt/0g94T2t
https://ift.tt/suvod62
Submitted July 30, 2022 at 02:41AM by Machinehum
via reddit https://ift.tt/0g94T2t
Medium
I'm Building a Self-Destructing USB Drive.
Because we all know the best way to keep your data safe is by blowing it up, right?
CVE-2022-36123 - Linux kernel <5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV guest OS users to cause a denial of service, or gain privileges.
https://ift.tt/0pn5J6c
Submitted July 30, 2022 at 07:29AM by docker-osx
via reddit https://ift.tt/ZAr4PEY
https://ift.tt/0pn5J6c
Submitted July 30, 2022 at 07:29AM by docker-osx
via reddit https://ift.tt/ZAr4PEY
Sick Codes - Security Research, Hardware & Software Hacking, Consulting, Linux, IoT, Cloud, Embedded, Arch, Tweaks & Tips!
CVE-2022-36123 - A vulnerability in Linux kernel mainline v5.18-rc1 through v5.19-rc6 does not clear statically allocated variables…
Title A vulnerability in Linux kernel mainline v5.18-rc1 through v5.19-rc6 does not clear statically allocated variables in the block starting symbol (.bss) due to a failed early_xen_iret_patch leading to an asm_exc_page_fault, or arbitrary code execution…
Running Exploit As Protected Process Ligh From Userland
https://ift.tt/lzAgkGs
Submitted July 31, 2022 at 01:48AM by tasty-pepperoni
via reddit https://ift.tt/sUnz0kH
https://ift.tt/lzAgkGs
Submitted July 31, 2022 at 01:48AM by tasty-pepperoni
via reddit https://ift.tt/sUnz0kH
GitHub
GitHub - tastypepperoni/RunAsWinTcb
Contribute to tastypepperoni/RunAsWinTcb development by creating an account on GitHub.
Pokemon-Shellcode-Loader: Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you.
https://ift.tt/wuDRxLJ
Submitted July 31, 2022 at 02:07AM by Techryptic
via reddit https://ift.tt/pF0zEtQ
https://ift.tt/wuDRxLJ
Submitted July 31, 2022 at 02:07AM by Techryptic
via reddit https://ift.tt/pF0zEtQ
GitHub
GitHub - Techryptic/Pokemon-Shellcode-Loader: Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander?…
Tired of looking at hex all day and popping '\x41's? Rather look at Lugia/Charmander? I have the solution for you. - GitHub - Techryptic/Pokemon-Shellcode-Loader: Tired of looking a...
CQ, a code security scanner
https://ift.tt/jKE84dk
Submitted July 31, 2022 at 01:50PM by 0xdea
via reddit https://ift.tt/yLYq8kt
https://ift.tt/jKE84dk
Submitted July 31, 2022 at 01:50PM by 0xdea
via reddit https://ift.tt/yLYq8kt
GitHub
GitHub - chris-anley/cq: CQ, a code security scanner
CQ, a code security scanner. Contribute to chris-anley/cq development by creating an account on GitHub.
Weekend Wrap-up of Infosec News
https://ift.tt/03U7fyv
Submitted July 31, 2022 at 04:39PM by SuaveHobo
via reddit https://ift.tt/T4QzcpB
https://ift.tt/03U7fyv
Submitted July 31, 2022 at 04:39PM by SuaveHobo
via reddit https://ift.tt/T4QzcpB
Substack
SOC Goulash: Weekend Wrap-Up
31/07/2022
Analysis report on DDoS attack that went on for 20 hours
https://ift.tt/BEJvfSj
Submitted August 01, 2022 at 10:55AM by Glad_Living3908
via reddit https://ift.tt/8pT7oQC
https://ift.tt/BEJvfSj
Submitted August 01, 2022 at 10:55AM by Glad_Living3908
via reddit https://ift.tt/8pT7oQC
CIP Blog
DDoS Attack Case Study: 20 Hours of Unprovoked Aggression
Recently, there was a GET Flooding Attack-type DDoS attack case on a web services company for about 20 hours. Various attack traffics were detected on the login page which caused serious load on the server and ended up paralyzing the entire login function.…
A Detailed Analysis of the RedLine Stealer
https://ift.tt/tjdriyM
Submitted August 01, 2022 at 07:26PM by CyberMasterV
via reddit https://ift.tt/RhJ7wmO
https://ift.tt/tjdriyM
Submitted August 01, 2022 at 07:26PM by CyberMasterV
via reddit https://ift.tt/RhJ7wmO
SecurityScorecard
A Detailed Analysis of the RedLine Stealer
TJnull’s guide to building a Home Lab
https://ift.tt/aYgTmf6
Submitted August 01, 2022 at 09:49PM by McLabraid
via reddit https://ift.tt/tSgVUKx
https://ift.tt/aYgTmf6
Submitted August 01, 2022 at 09:49PM by McLabraid
via reddit https://ift.tt/tSgVUKx
NetSec Focus
TJnull’s guide to building a Home Lab
Table of Contents Introduction A word of advice Why should you build a home lab? Things you need to consider Hardware Hunting for Hardware Network Software Virtualization Software Network Virtual Devices Operating Systems Windows Unix and *Nix Apple Mac OS…
SSTImap - Automatic SSTI detection tool with interactive interface
https://ift.tt/pezNK5P
Submitted August 01, 2022 at 11:42PM by vladko312
via reddit https://ift.tt/o8X0xmj
https://ift.tt/pezNK5P
Submitted August 01, 2022 at 11:42PM by vladko312
via reddit https://ift.tt/o8X0xmj
GitHub
GitHub - vladko312/SSTImap: Automatic SSTI detection tool with interactive interface
Automatic SSTI detection tool with interactive interface - GitHub - vladko312/SSTImap: Automatic SSTI detection tool with interactive interface
Threat Modeling Field Guide
https://ift.tt/9nrZ86d
Submitted August 02, 2022 at 01:20AM by sanitybit
via reddit https://ift.tt/wNGRFeI
https://ift.tt/9nrZ86d
Submitted August 02, 2022 at 01:20AM by sanitybit
via reddit https://ift.tt/wNGRFeI
shellsharks
The Enchiridion of Impetus Exemplar
A vade mecum for all things Threat Modeling.
Combating Insider Threats from the Inside Out
https://ift.tt/tZWc4Ef
Submitted August 02, 2022 at 07:43PM by Any-Blacksmith-5674
via reddit https://ift.tt/8OYFPni
https://ift.tt/tZWc4Ef
Submitted August 02, 2022 at 07:43PM by Any-Blacksmith-5674
via reddit https://ift.tt/8OYFPni
Akeyless
Combating Insider Threats from the Inside Out | Akeyless
Insider threats are one of the most difficult risks for security teams to manage because most employees require some level of trust and privileges to perform their roles. Managing this risk involves detecting and containing the undesirable behavior of trusted…
All your PTY/TTY belongs to us
https://ift.tt/1T2bLCB
Submitted August 02, 2022 at 06:56PM by Background-Degree-50
via reddit https://ift.tt/QPpyz2Y
https://ift.tt/1T2bLCB
Submitted August 02, 2022 at 06:56PM by Background-Degree-50
via reddit https://ift.tt/QPpyz2Y
GitHub
GitHub - io-tl/Mara: Mara is a userland pty/tty sniffer
Mara is a userland pty/tty sniffer. Contribute to io-tl/Mara development by creating an account on GitHub.
Using process creation properties to catch evasion techniques
https://ift.tt/O6gDNKq
Submitted August 03, 2022 at 03:51AM by sanitybit
via reddit https://ift.tt/pXZ0Oqa
https://ift.tt/O6gDNKq
Submitted August 03, 2022 at 03:51AM by sanitybit
via reddit https://ift.tt/pXZ0Oqa
Microsoft Security Blog
Using process creation properties to catch evasion techniques - Microsoft Security Blog
We developed a robust detection method in Microsoft Defender for Endpoint that can catch known and unknown variations of a process execution class used by attackers to evade detection. This class of stealthy execution techniques include process doppelganging…
NIST SIKE finalist for quantum safe crypto has been broken by a very efficient classical computer attack.
https://ift.tt/mHdzBCa
Submitted August 03, 2022 at 03:30AM by ScottContini
via reddit https://ift.tt/s8n3oxK
https://ift.tt/mHdzBCa
Submitted August 03, 2022 at 03:30AM by ScottContini
via reddit https://ift.tt/s8n3oxK
Creating Processes Using System Calls
https://ift.tt/oBLYSAl
Submitted August 03, 2022 at 03:52AM by sanitybit
via reddit https://ift.tt/8JpAN7R
https://ift.tt/oBLYSAl
Submitted August 03, 2022 at 03:52AM by sanitybit
via reddit https://ift.tt/8JpAN7R
How to detect Brute Ratel C2 (beacons & server deployments)
https://ift.tt/RCdAKqZ
Submitted August 03, 2022 at 02:31PM by gid0rah
via reddit https://ift.tt/34PIKEC
https://ift.tt/RCdAKqZ
Submitted August 03, 2022 at 02:31PM by gid0rah
via reddit https://ift.tt/34PIKEC
MDSec
PART 3: How I Met Your Beacon - Brute Ratel - MDSec
Introduction In part three of this series, we will analyse Brute Ratel, a command and control framework developed by Dark Vortex. As the C2 is lesser known, we can see...
EMBA Firmware analyzer version 1.1.0 aka Las Vegas Edt. is out now - a lot of new features including system emulation environment, status bar and Ubuntu support
https://ift.tt/rpBMDWE
Submitted August 03, 2022 at 02:13PM by _m-1-k-3_
via reddit https://ift.tt/qrx9WcT
https://ift.tt/rpBMDWE
Submitted August 03, 2022 at 02:13PM by _m-1-k-3_
via reddit https://ift.tt/qrx9WcT
GitHub
Release EMBA v1.1.0 - Las Vegas Edt. · e-m-b-a/emba
Beside bug fixes this release introduces many new features and it was so much fun working on it. We think this release is very beautiful and we are really proud of it! You are invited to celebrate ...